I typically use Burp Proxy - it seems to do everything you would need. Or if you want to do more, the entire Burp Suite does a huge amount. It is my first goto tool for the automated part of a security assessment, allowing me to spider an application, run scripts, test for particular vulnerabilities, and even an element for fuzzing/sequencing.